ed is a line-oriented text editor, used to create, display, and modifytext files (both interactively and via shell scripts).

A heap-based buffer overflow was discovered in the way ed, the GNU lineeditor, processed long file names. An attacker could create a file with aspecially-crafted name that could possibly execute an arbitrary code whenopened in the ed editor. (CVE-2008-3916)

Users of ed should upgrade to this updated package, which containsa backported patch to resolve this issue.

4. Solution:

Before applying this update, make sure that all previously-releasederrata relevant to your system have been applied.

This update is available via Red Hat Network. Details on how to usethe Red Hat Network to apply this update are available athttp://kbase.redhat.com/faq/FAQ_58_10188